Our environment relies on AD and we want the passwords to be changed in AD, that propagates the password to Kerberos. When the password is expired in Kerberos, Kerberos is giving option to users to reset the password. Is there any way this can be disabled? There will be confusion if users have to change passwords in both AD and Kerberos. ________________________________________________ Kerberos mailing list Kerberos@mit.edu https://mailman.mit.edu/mailman/listinfo/kerberos